[Secure-testing-commits] r44420 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Sep 8 17:20:55 UTC 2016


Author: carnil
Date: 2016-09-08 17:20:54 +0000 (Thu, 08 Sep 2016)
New Revision: 44420

Modified:
   data/CVE/list
Log:
Correct information for CVE-2016-7092, all versions are vulnerable

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-09-08 17:08:26 UTC (rev 44419)
+++ data/CVE/list	2016-09-08 17:20:54 UTC (rev 44420)
@@ -295,10 +295,8 @@
 	NOTE: http://xenbits.xen.org/xsa/advisory-186.html
 CVE-2016-7092 [Disallow L3 recursive pagetable for 32-bit PV guests]
 	RESERVED
-	- xen 4.6.0-1
+	- xen <unfixed>
 	NOTE: http://xenbits.xen.org/xsa/advisory-185.html
-	NOTE: Only affects Xen 4.4, as workaround it is marked as fixed in the first xen version entering unstable
-	NOTE: after the 4.4 series.
 CVE-2016-7090
 	RESERVED
 CVE-2016-7098 [files rejected by access list are kept on the disk for the duration of HTTP connection]




More information about the Secure-testing-commits mailing list